Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 359 154

Количество 359 154

github логотип

GHSA-37h4-j973-qf8x

больше 4 лет назад

PHP remote file inclusion in eventcal/mod_eventcal.php in the event module 1.0 for Limbo CMS allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.

EPSS: Низкий
github логотип

GHSA-37h3-969w-7ph2

больше 2 лет назад

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-37h3-2fhg-m9qh

больше 4 лет назад

The crypto API in the Linux kernel through 3.9-rc8 does not initialize certain length variables, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call, related to the hash_recvmsg function in crypto/algif_hash.c and the skcipher_recvmsg function in crypto/algif_skcipher.c.

EPSS: Низкий
github логотип

GHSA-37h2-6p4f-mp3q

около 1 месяца назад

Serena: Unauthenticated Flask dashboard on fixed port enables DNS rebinding → memory poisoning → RCE

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-37h2-6m57-6c87

больше 4 лет назад

An exploitable heap overflow vulnerability exists in the ipStringCreate function of Iceni Argus Version 6.6.05. A specially crafted pdf file can cause an integer overflow resulting in heap overflow. An attacker can send file to trigger this vulnerability.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-37h2-52m7-6365

больше 4 лет назад

Directory traversal vulnerability in includer.cgi in The Includer allows remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) a full pathname in the URL.

EPSS: Низкий
github логотип

GHSA-37h2-23m8-m8pm

больше 4 лет назад

An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute code via a crafted WMF file with a manipulated WMF header size, possibly involving an integer overflow, a different vulnerability than CVE-2005-4560, and aka "WMF Image Parsing Memory Corruption Vulnerability."

EPSS: Средний
github логотип

GHSA-37gx-xxp4-5rgx

4 месяца назад

Microsoft Security Advisory CVE-2026-33116 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-37gx-jqx9-fwmg

больше 2 лет назад

Improper Certificate Validation in Apache DolphinScheduler

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-37gx-37xg-963j

больше 1 года назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in HK Digital Agency LLC TAX SERVICE Electronic HDM allows SQL Injection.This issue affects TAX SERVICE Electronic HDM: from n/a through 1.1.2.

CVSS3: 10
EPSS: Низкий
github логотип

GHSA-37gw-25xx-74f7

больше 2 лет назад

Windows Kerberos Security Feature Bypass Vulnerability

CVSS3: 9
EPSS: Средний
github логотип

GHSA-37gv-w6h3-7hm7

12 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-37gv-mrx7-gfqg

около 4 лет назад

The LAN-side Web-Configuration Interface has Stack-based Buffer Overflow vulnerability in the D-Link Wi-Fi router firmware DIR-890L DIR890LA1_FW107b09.bin and previous versions. The function created at 0x17958 of /htdocs/cgibin will call sprintf without checking the length of strings in parameters given by HTTP header and can be controlled by users easily. The attackers can exploit the vulnerability to carry out arbitrary code by means of sending a specially constructed payload to port 49152.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-37gv-9q37-8946

почти 3 года назад

An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32_fpu function of libr/arch/p/nds32/nds32-dis.h.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-37gr-95fp-3q54

больше 4 лет назад

Kerio Personal Firewall 4.0 (KPF4) allows local users with administrative privileges to bypass the Application Security feature and execute arbitrary processes by directly writing to \device\physicalmemory to restore the running kernel's SDT ServiceTable.

EPSS: Низкий
github логотип

GHSA-37gr-7cxx-ccpq

почти 3 года назад

Docker Desktop before 4.23.0 allows Access Token theft via a crafted extension icon URL. This issue affects Docker Desktop: before 4.23.0.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-37gq-89mf-f5ph

больше 4 лет назад

Stack-based buffer overflow in a certain ActiveX control in GLChat.ocx 2.5.1.32 in GlobalLink 2.7.0.8, as used in Ourgame GLWorld and possibly other products, allows remote attackers to execute arbitrary code via a long first argument to the ConnectAndEnterRoom method, possibly involving the GLCHAT.GLChatCtrl.1 control, as originally exploited in the wild in October 2007. NOTE: some of these details are obtained from third party information. NOTE: this was originally reported as a heap-based issue by some sources.

EPSS: Средний
github логотип

GHSA-37gq-4hg5-cxqj

почти 3 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Arul Prasad J Publish Confirm Message plugin <= 1.3.1 versions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-37gp-666w-35h8

около 4 лет назад

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about these vulnerabilities, see the Details section of this advisory.

EPSS: Низкий
github логотип

GHSA-37gm-h5wr-pf25

почти 2 года назад

Path traversal in redaxo

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-37h4-j973-qf8x

PHP remote file inclusion in eventcal/mod_eventcal.php in the event module 1.0 for Limbo CMS allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-37h3-969w-7ph2

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.

CVSS3: 9.8
36%
Средний
больше 2 лет назад
github логотип
GHSA-37h3-2fhg-m9qh

The crypto API in the Linux kernel through 3.9-rc8 does not initialize certain length variables, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call, related to the hash_recvmsg function in crypto/algif_hash.c and the skcipher_recvmsg function in crypto/algif_skcipher.c.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-37h2-6p4f-mp3q

Serena: Unauthenticated Flask dashboard on fixed port enables DNS rebinding → memory poisoning → RCE

CVSS3: 8.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-37h2-6m57-6c87

An exploitable heap overflow vulnerability exists in the ipStringCreate function of Iceni Argus Version 6.6.05. A specially crafted pdf file can cause an integer overflow resulting in heap overflow. An attacker can send file to trigger this vulnerability.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-37h2-52m7-6365

Directory traversal vulnerability in includer.cgi in The Includer allows remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) a full pathname in the URL.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-37h2-23m8-m8pm

An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute code via a crafted WMF file with a manipulated WMF header size, possibly involving an integer overflow, a different vulnerability than CVE-2005-4560, and aka "WMF Image Parsing Memory Corruption Vulnerability."

19%
Средний
больше 4 лет назад
github логотип
GHSA-37gx-xxp4-5rgx

Microsoft Security Advisory CVE-2026-33116 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

CVSS3: 7.5
2%
Низкий
4 месяца назад
github логотип
GHSA-37gx-jqx9-fwmg

Improper Certificate Validation in Apache DolphinScheduler

CVSS3: 7.3
1%
Низкий
больше 2 лет назад
github логотип
GHSA-37gx-37xg-963j

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in HK Digital Agency LLC TAX SERVICE Electronic HDM allows SQL Injection.This issue affects TAX SERVICE Electronic HDM: from n/a through 1.1.2.

CVSS3: 10
1%
Низкий
больше 1 года назад
github логотип
GHSA-37gw-25xx-74f7

Windows Kerberos Security Feature Bypass Vulnerability

CVSS3: 9
17%
Средний
больше 2 лет назад
github логотип
GHSA-37gv-w6h3-7hm7

In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

CVSS3: 7
0%
Низкий
12 месяцев назад
github логотип
GHSA-37gv-mrx7-gfqg

The LAN-side Web-Configuration Interface has Stack-based Buffer Overflow vulnerability in the D-Link Wi-Fi router firmware DIR-890L DIR890LA1_FW107b09.bin and previous versions. The function created at 0x17958 of /htdocs/cgibin will call sprintf without checking the length of strings in parameters given by HTTP header and can be controlled by users easily. The attackers can exploit the vulnerability to carry out arbitrary code by means of sending a specially constructed payload to port 49152.

CVSS3: 9.8
14%
Средний
около 4 лет назад
github логотип
GHSA-37gv-9q37-8946

An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32_fpu function of libr/arch/p/nds32/nds32-dis.h.

CVSS3: 9.8
1%
Низкий
почти 3 года назад
github логотип
GHSA-37gr-95fp-3q54

Kerio Personal Firewall 4.0 (KPF4) allows local users with administrative privileges to bypass the Application Security feature and execute arbitrary processes by directly writing to \device\physicalmemory to restore the running kernel's SDT ServiceTable.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-37gr-7cxx-ccpq

Docker Desktop before 4.23.0 allows Access Token theft via a crafted extension icon URL. This issue affects Docker Desktop: before 4.23.0.

CVSS3: 8
1%
Низкий
почти 3 года назад
github логотип
GHSA-37gq-89mf-f5ph

Stack-based buffer overflow in a certain ActiveX control in GLChat.ocx 2.5.1.32 in GlobalLink 2.7.0.8, as used in Ourgame GLWorld and possibly other products, allows remote attackers to execute arbitrary code via a long first argument to the ConnectAndEnterRoom method, possibly involving the GLCHAT.GLChatCtrl.1 control, as originally exploited in the wild in October 2007. NOTE: some of these details are obtained from third party information. NOTE: this was originally reported as a heap-based issue by some sources.

12%
Средний
больше 4 лет назад
github логотип
GHSA-37gq-4hg5-cxqj

Cross-Site Request Forgery (CSRF) vulnerability in Arul Prasad J Publish Confirm Message plugin <= 1.3.1 versions.

CVSS3: 4.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-37gp-666w-35h8

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about these vulnerabilities, see the Details section of this advisory.

1%
Низкий
около 4 лет назад
github логотип
GHSA-37gm-h5wr-pf25

Path traversal in redaxo

CVSS3: 4.9
1%
Низкий
почти 2 года назад

Уязвимостей на страницу